apiVersion: rbac.authorization.k8s.io/v1 kind: ClusterRole metadata: name: secretprovidersyncing-role rules: - apiGroups: - "" resources: - secrets verbs: - create - delete - get - list - patch - update - watch --- apiVersion: rbac.authorization.k8s.io/v1 kind: ClusterRoleBinding metadata: name: secretprovidersyncing-rolebinding roleRef: apiGroup: rbac.authorization.k8s.io kind: ClusterRole name: secretprovidersyncing-role subjects: - kind: ServiceAccount name: secrets-store-csi-driver namespace: kube-system